CVE-2021-44892

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
10/02/2022
Last modified:
23/02/2022

Description

A Remote Code Execution (RCE) vulnerability exists in ThinkPHP 3.x.x via value[_filename] in index.php, which could let a malicious user obtain server control privileges.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:thinkphp:thinkphp:3.2.3:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools